VulnerabilityModified
CVE-2004-1407
Multiple directory traversal vulnerabilities in singapore Image Gallery Web Application 0.9.10 allow remote attackers to (1) read arbitrary files via the showThumb method for thumb.php, or (2) delete arbitrary files via admin.class.php.
MEDIUM 5.0EPSS 1.64%
Does this matter?
Lower severity and a low EPSS score (1.64%). Track it; it rarely justifies an emergency change on its own.
Description
Multiple directory traversal vulnerabilities in singapore Image Gallery Web Application 0.9.10 allow remote attackers to (1) read arbitrary files via the showThumb method for thumb.php, or (2) delete arbitrary files via admin.class.php.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 1.64% probability · 75th percentile
- CISA KEV
- Not listed
- Affected
- singapore/image gallery web application
- Source
- cve@mitre.org
References
- http://marc.info/?l=bugtraq&m=110323479715051&w=2
- http://www.security.org.sg/vuln/singapore0910.html
- http://www.securityfocus.com/bid/11990Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18528
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18532
- http://marc.info/?l=bugtraq&m=110323479715051&w=2
- http://www.security.org.sg/vuln/singapore0910.html
- http://www.securityfocus.com/bid/11990Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18528
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18532
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.